CVE-2010-2330
Description
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Content-Length header.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
Exploits
Public proof-of-concept code below. AS-IS, for defenders and authorised testing only.
Exploit-DB
File Sharing Wizard 1.5.0 - Buffer Overflow (PoC)
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| upredsun | isharer_file_sharing_wizard | 1.5.0 | |
References
- http://osvdb.org/65570
- http://secunia.com/advisories/40197
- http://www.exploit-db.com/exploits/13876
- http://www.s3cur1ty.de/filesharingwizard-advisory-poc-eax
- http://www.securityfocus.com/bid/40866
- http://www.vupen.com/english/advisories/2010/1487
- https://exchange.xforce.ibmcloud.com/vulnerabilities/59434
- http://osvdb.org/65570
- http://secunia.com/advisories/40197
- http://www.exploit-db.com/exploits/13876
- http://www.s3cur1ty.de/filesharingwizard-advisory-poc-eax
- http://www.securityfocus.com/bid/40866
- http://www.vupen.com/english/advisories/2010/1487
- https://exchange.xforce.ibmcloud.com/vulnerabilities/59434
CWEs
CWE-119
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.